What is CVE-2026-14446?
CVE-2026-14446 is a broken access control vulnerability in IBM WebSphere Application Server 9.0 and 8.5 that leads to privilege escalation in the administrative console. Unauthorized users could gain elevated privileges on affected systems. Immediate patching is recommended.
Azərbaycanca: Bu CVE-2026-14446, IBM WebSphere Application Server 9.0 və 8.5 versiyalarında administrativ konsolda broken access control nəticəsində privilege escalation zəifliyidir. Təsirə məruz qalan sistemlərdə icazəsiz istifadəçilər yüksək hüquqlar əldə edə bilər. Ən qısa zamanda rəsmi yamaqları tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-284; shared vendor: IBM
FAQ2
Which product and versions are affected by CVE-2026-14446?
This vulnerability affects the administrative console in IBM WebSphere Application Server versions 9.0 and 8.5.
What can an attacker achieve by exploiting CVE-2026-14446?
Due to broken access control, unauthorized users could gain elevated privileges, resulting in privilege escalation.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.